Red Hat Ansible Automation Platform 2是美国Red Hat公司的一款构建、部署和管理自动化的软件。 Red Hat Ansible Automation Platform 2存在授权问题漏洞,该漏洞源于AWX中websocket事件消费者未对inventory_update_events、project_update_events和system_job_events三个事件组进行RBAC授权检查,可能导致任何已认证用户订阅这些未映射的websocket事件组,并接收来自
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Red Hat | Red Hat Ansible Automation Platform 2 | any |
affected |
any |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | Red Hat Ansible Automation Platform 2 | - |
cpe:/a:redhat:ansible_automation_platform:2
|
|
| Red Hat | Red Hat Ansible Automation Platform 2 | - |
cpe:/a:redhat:ansible_automation_platform:2
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-44189 | 7.8 HIGH | Ansible-lightspeed: visual studio code ansible lightspeed extension: arbitrary code execut |
| CVE-2026-44190 | 7.8 HIGH | Ansible-lightspeed: ansible lightspeed visual studio code extension: arbitrary code execut |
| CVE-2026-44191 | 7.8 HIGH | Ansible-lightspeed: visual studio code ansible lightspeed extension: remote code execution |
| CVE-2026-44192 | 6.6 MEDIUM | Ansible-lightspeed: ansible lightspeed mcp server: remote code execution and data exfiltra |
| CVE-2026-16560 | 5.3 MEDIUM | 389-ds-base: 389-ds-base: heap-buffer-overflow in rdn_av_swap on quoted multivalued rdn |
| CVE-2026-16473 | 4.3 MEDIUM | Sbc: sbc: heap out-of-bounds read via crafted sbc audio frame |
| CVE-2026-44187 | 3.3 LOW | Ansible-lightspeed: ansible lightspeed extension for visual studio code: information discl |
No comments yet